4 ms·
If the Obscura network started getting DDoSed, I'm sure Obscura would also become quite slow. The infosec hobbyist in me believes the many-months-long massive
by CommitSyn 3y ago
If the Obscura network started getting DDoSed, I'm sure Obscura would also become quite slow.
The infosec hobbyist in me believes the many-months-long massive DDoS attack against tor infrastructure was exploiting a vulnerability in tor to perform (timing attacks, or related traffic correlation attacks) against and unmask hidden services or hidden service users, or maybe even exit node users. How realistic is this to someone that understands the tor network more in-depth than I do?
Because it's so noisy and expensive, I can't believe they'd keep it up this long if it wasn't extremely effective, whatever the purpose and actor.
I'm not sure we would know about the Carnegie Melon research if it weren't for the researchers trying to give a talk about at Black Hat 2014. https://threatpost.com/tor-sniffs-out-attacks-trying-to-deanonymize-hidden-services-users/107514/ https://threatpost.com/tor-sniffs-out-attacks-trying-to-dean...
Or 2015 at MIT - https://www.bitdefender.com/blog/hotforsecurity/de-anonymization-of-tor-hidden-services-with-88-percent-certainty-researchers-say/ https://www.bitdefender.com/blog/hotforsecurity/de-anonymiza...
Or 2019-2021+ - https://nusenu.medium.com/is-kax17-performing-de-anonymization-attacks-against-tor-users-42e566defce8 https://nusenu.medium.com/is-kax17-performing-de-anonymizati...
Or 2022 - https://infocondb.org/con/def-con/def-con-30/deanonymization-of-tor-http-hidden-services https://infocondb.org/con/def-con/def-con-30/deanonymization...